CVE-2022-1899: Out-of-bounds Read in radareorg/radare2
Published May 26, 2022
·Updated
Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0.
Affected Software
1 affected component
Radare Radare2<5.7.0
Remediation
Event History
May 26, 2022
CVE Published
via MITRE·04:25 PM
Data Sourced
via MITRE·04:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-1899?
CVE-2022-1899 is an out-of-bounds read vulnerability in the GitHub repository radareorg/radare2 prior to version 5.7.0.
2
How severe is CVE-2022-1899?
CVE-2022-1899 is classified as critical with a severity score of 9.1.
3
Which software versions are affected by CVE-2022-1899?
Radare Radare2 versions up to, but excluding, 5.7.0 are affected by CVE-2022-1899.
4
Is there a fix available for CVE-2022-1899?
Yes, upgrading to version 5.7.0 or newer of Radare Radare2 fixes the vulnerability.
5
Where can I find more information about CVE-2022-1899?
You can find more information about CVE-2022-1899 at the following references: [GitHub Commit](https://github.com/radareorg/radare2/commit/193f4fe01d7f626e2ea937450f2e0c4604420e9d), [Huntr Report](https://huntr.dev/bounties/8a3dc5cb-08b3-4807-82b2-77f08c137a04).